Senior Security Product Engineer
Date: Nov 6, 2024
Location: GBR, GB
Company: LRQA
Job ID:41127
Location:UK : Remote Based
Position Category:Information Technology
Position Type:Employee Regular
IR35 Status:[[custIR35]]
Who are LRQA?
LRQA stands for dedication to clients, market firsts, and deep expertise in risk management. We’ve grown to become a leading global assurance provider, bringing together outstanding expertise in certification, customised assurance, cybersecurity, inspection and training.
While we’re proud of our heritage, it’s who we are today that really matters, because that’s what shapes who we and our clients can become tomorrow. By staying true to our shared values and combining decades of collective experience, we support our clients in building a safer and more sustainable future.
LRQA currently operates across 50 countries, has more than 2,500 colleagues, generates £315m in revenue, and supports more than 60,000 clients across a diverse range of sectors and markets.
About LRQA Nettitude
LRQA Nettitude is a leading provider of Cyber Security and Assurance, Incident Response, and Technology services to organizations worldwide. We are in an exciting growth phase, driven by the dynamic Cyber Security landscape. We're looking for passionate individuals eager to tackle the challenges of the evolving IT industry and emerging threats. Join us at the forefront of cyber security innovation and help shape the future. Learn more about LRQA Nettitude at nettitude.com.
Role Purpose
The Senior Security Product Engineer plays a critical role in shaping the future of our managed security service offerings, contributing directly to the success of both the Managed Service Department and the wider organisation. In this senior hands-on technical role, you will be working closely with the Head of Managed Security Services and be responsible for driving the evolution of our security services by researching, evaluating, and developing technical configurations for new and existing vendor solutions.
Your expertise will be key to ensuring that our services are not only technically robust but also aligned with operational needs. You will work with delivery teams to ensure smooth transitions from product development to service handover, ensuring that technical configurations are properly implemented and scalable for client environments. As a Senior Security Product Engineer, you will also engage with clients and internal stakeholders to ensure that our managed services continuously meet and exceed expectations in terms of performance, reliability, and security.
Key Role Responsibilities
We are seeking a highly skilled and driven individual to join our Managed Security Services team as a Senior Security Product Engineer.
Responsibilities:
- Product Evaluation and Development
- Research and evaluate new and existing vendor solutions to assess their suitability for managed security service offerings.
- Develop and document technical configurations and deployment requirements for new and existing services.
- Ensure product alignment with the latest security best practices, industry standards, and client needs.
- Service Evolution
- Collaborate with the Head of Managed Security Services to drive the evolution of existing managed services.
- Identify opportunities for service enhancement and improvement, ensuring that offerings remain competitive and effective.
- Lead proof-of-concept (POC) engagements with internal teams and clients to validate new solutions.
- Cross-Functional Collaboration
- Work closely with delivery, operations, and engineering teams to ensure seamless handover of technical solutions into production.
- Act as the primary technical interface between internal teams, clients, and vendors to support managed service development and delivery.
- Engage with vendors to keep updated on product roadmaps and upcoming features, and ensure continuous improvement of our managed services.
- Client Engagement
- Engage directly with clients to understand their security challenges and ensure services are tailored to meet their specific needs.
- Support pre-sales activities, providing technical guidance and solution design during client engagements.
- Ensure customer satisfaction by proactively identifying and resolving any technical issues related to managed services.
- Operational Readiness and Support
- Define operational procedures and processes to support the technical aspects of new services, working with the operational team to ensure readiness.
- Lead technical knowledge transfers to operations, ensuring that deployment processes are well-documented and understood by the delivery teams.
- Provide ongoing technical support and expertise to ensure the continuous smooth operation of managed services.
- Innovation and Continuous Improvement
- Stay up-to-date with the latest cybersecurity trends, technologies, and threats to ensure our services remain cutting-edge.
- Proactively identify areas where automation, optimisation, or new technologies can enhance service efficiency and security posture.
- Participate in regular reviews of services, providing feedback and recommendations for ongoing improvements.
Desirable Skills/Qualifications
The following are desirable but not a requirement for the role:
- Strategic and Business Acumen
- Strong understanding of the role of a Managed Service Provider (MSP) and the specific needs of MSP clients.
- Ability to identify and articulate the value proposition of managed security service offerings, ensuring they align with client requirements and market demand.
- Proven experience in developing go-to-market strategies for new managed services, focusing on scalability and operational efficiency.
- Ability to transform traditional services, such as penetration testing, into scalable and repeatable managed service offerings. This includes creating continuous testing models (e.g., continuous assurance) and integrating them into broader managed security portfolios.
- Technical Expertise
- Experience working with a range of security vendors and technologies, including but not limited to SIEM (e.g., Microsoft Sentinel, LogRhythm), EDR (e.g., CrowdStrike, Microsoft Defender), and Vulnerability Management tools (e.g., Qualys, Tenable).
- Proficiency in designing and configuring security solutions for managed services, ensuring they meet both client and operational needs.
- Experience with scripting and automation using languages such as Python, PowerShell, or Bash to streamline operational processes and enhance security tool integrations.
- Client-Focused Problem Solving
- Strong interpersonal skills with the ability to engage directly with clients, understand their security challenges, and recommend solutions that are technically sound and commercially viable.
- Experience supporting pre-sales processes by providing technical guidance and solution design tailored to client needs.
- Collaboration and Leadership
- Proven ability to collaborate across internal teams, including engineering, delivery, and operations, to ensure seamless service implementation.
- Experience in vendor management, including evaluating and selecting security products for managed service offerings.
- Innovation and Continuous Learning
- Keen interest in staying ahead of cybersecurity trends, emerging threats, and new technologies that can enhance managed service offerings.
- Demonstrated ability to drive continuous improvement by identifying areas for automation, optimisation, and innovation within managed services.
- Certifications and Technical Qualifications
- Technical certifications related to security vendor platforms, such as:
- Microsoft SC-100: Microsoft Cybersecurity Architect Expert
- Microsoft SC-200: Security Operations Analyst
- Certifications from security vendors (e.g., CrowdStrike, Qualys) would be beneficial.
- Strong understanding of ITIL frameworks and experience applying them within a managed service context is advantageous. #LI~Nettitude
- Technical certifications related to security vendor platforms, such as:
Diversity and Inclusion at Lloyd's Register:
Together we are one Lloyd’s Register, committed to developing an inclusive and safe workplace that embraces and celebrates diversity. We strive to ensure that all applicants to LR experience equality of opportunity and fair treatment, because we believe it is the right thing to do. We hope you do too.
Copyright © Lloyd's Register 2021. All rights reserved. Terms of use. Privacy policy.
The Lloyd's Register Group comprises charities and non-charitable companies, with the latter supporting the charities in their main goal of enhancing the safety of life and property, at sea, on land and in the air - for the benefit of the public and the environment. (Group entities).